Thoughts on this biometric authentication spec from MOSIP? https://docs.mosip.io/1.2.0/overview/standards-and-specifications/169-qr-cod...
doesn't look well-thought out to me. 1. it's not encrypted so anyone can read all of it 2. why languages - what does that add? 3. first, middle, last if very english-centric. Should be like pass port. Given name, Family name 4. not sure what use case it - i can't think of one where it is useful and secure. ..tom On Mon, May 27, 2024 at 7:01 AM Jorge Flores <jorge@entidad.io> wrote:
Thoughts on this biometric authentication spec from MOSIP?
https://docs.mosip.io/1.2.0/overview/standards-and-specifications/169-qr-cod... _______________________________________________ A Community Group mailing list of KantaraInitiative.org WG-RIUP mailing list -- wg-riup@kantarainitiative.org To unsubscribe send an email to staff@kantarainitiative.org List archives -- https://mailman.kantarainitiative.org/hyperkitty/list/wg-riup@kantarainitiat... ______ Group wiki -- https://kantara.atlassian.net/wiki/spaces/WG-RIUP
0 *H÷ 010 `He0 *H÷ $ÕContent-Type: multipart/alternative; boundary="----=_NextPart_000_0164_01DAB0CC.C0065B70" This is a multipart message in MIME format. ------=_NextPart_000_0164_01DAB0CC.C0065B70 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: 8bit Yet still seems to be a thing⊠? From: Tom Jones <thomasclinganjones@gmail.com> Sent: Monday, May 27, 2024 7:02 PM To: Jorge Flores <jorge@entidad.io> Cc: wg-riup <wg-riup@kantarainitiative.org> Subject: [WG-RIUP] Re: Claim 169 doesn't look well-thought out to me. 1. it's not encrypted so anyone can read all of it 2. why languages - what does that add? 3. first, middle, last if very english-centric. Should be like pass port. Given name, Family name 4. not sure what use case it - i can't think of one where it is useful and secure. ..tom On Mon, May 27, 2024 at 7:01â¯AM Jorge Flores <jorge@entidad.io <mailto:jorge@entidad.io> > wrote: Thoughts on this biometric authentication spec from MOSIP? https://docs.mosip.io/1.2.0/overview/standards-and-specifications/169-qr-cod... _______________________________________________ A Community Group mailing list of KantaraInitiative.org WG-RIUP mailing list -- wg-riup@kantarainitiative.org <mailto:wg-riup@kantarainitiative.org> To unsubscribe send an email to staff@kantarainitiative.org <mailto:staff@kantarainitiative.org> List archives -- https://mailman.kantarainitiative.org/hyperkitty/list/wg-riup@kantarainitiat... ______ Group wiki -- https://kantara.atlassian.net/wiki/spaces/WG-RIUP ------=_NextPart_000_0164_01DAB0CC.C0065B70 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <html xmlns:v=3D"urn:schemas-microsoft-com:vml" = xmlns:o=3D"urn:schemas-microsoft-com:office:office" = xmlns:w=3D"urn:schemas-microsoft-com:office:word" = xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" = xmlns=3D"http://www.w3.org/TR/REC-html40"><head><meta = http-equiv=3DContent-Type content=3D"text/html; charset=3Dutf-8"><meta = name=3DGenerator content=3D"Microsoft Word 15 (filtered = medium)"><style><!-- /* Font Definitions */ @font-face {font-family:"Cambria Math"; panose-1:2 4 5 3 5 4 6 3 2 4;} @font-face {font-family:"Yu Gothic"; panose-1:2 11 4 0 0 0 0 0 0 0;} @font-face {font-family:Calibri; panose-1:2 15 5 2 2 2 4 3 2 4;} @font-face {font-family:Aptos;} @font-face {font-family:"\@Yu Gothic"; panose-1:2 11 4 0 0 0 0 0 0 0;} /* Style Definitions */ p.MsoNormal, li.MsoNormal, div.MsoNormal {margin:0in; font-size:12.0pt; font-family:"Aptos",sans-serif;} a:link, span.MsoHyperlink {mso-style-priority:99; color:blue; text-decoration:underline;} span.EmailStyle18 {mso-style-type:personal-reply; font-family:"Aptos",sans-serif; color:windowtext;} .MsoChpDefault {mso-style-type:export-only;} @page WordSection1 {size:8.5in 11.0in; margin:1.0in 1.0in 1.0in 1.0in;} div.WordSection1 {page:WordSection1;} --></style><!--[if gte mso 9]><xml> <o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" /> </xml><![endif]--><!--[if gte mso 9]><xml> <o:shapelayout v:ext=3D"edit"> <o:idmap v:ext=3D"edit" data=3D"1" /> </o:shapelayout></xml><![endif]--></head><body lang=3DEN-US link=3Dblue = vlink=3Dpurple style=3D'word-wrap:break-word'><div = class=3DWordSection1><p class=3DMsoNormal><span = style=3D'font-size:11.0pt'>Yet still seems to be a thing=E2=80=A6 = ?<o:p></o:p></span></p><p class=3DMsoNormal><span = style=3D'font-size:11.0pt'><o:p> </o:p></span></p><div = style=3D'border:none;border-top:solid #E1E1E1 1.0pt;padding:3.0pt 0in = 0in 0in'><p class=3DMsoNormal><b><span = style=3D'font-size:11.0pt;font-family:"Calibri",sans-serif'>From:</span><= /b><span style=3D'font-size:11.0pt;font-family:"Calibri",sans-serif'> = Tom Jones <thomasclinganjones@gmail.com> <br><b>Sent:</b> Monday, = May 27, 2024 7:02 PM<br><b>To:</b> Jorge Flores = <jorge@entidad.io><br><b>Cc:</b> wg-riup = <wg-riup@kantarainitiative.org><br><b>Subject:</b> [WG-RIUP] Re: = Claim 169<o:p></o:p></span></p></div><p = class=3DMsoNormal><o:p> </o:p></p><div><p class=3DMsoNormal>doesn't = look well-thought out to me.<o:p></o:p></p><div><p class=3DMsoNormal>1. = it's not encrypted so anyone can read all of = it<o:p></o:p></p></div><div><p class=3DMsoNormal>2. why languages - what = does that add?<o:p></o:p></p></div><div><p class=3DMsoNormal>3. first, = middle, last if very english-centric. Should be like pass = port. Given name, Family name<o:p></o:p></p></div><div><p = class=3DMsoNormal>4. not sure what use case it - i can't think of one = where it is useful and secure.<br = clear=3Dall><o:p></o:p></p><div><div><div><div><p = class=3DMsoNormal>..tom<o:p></o:p></p></div></div></div></div><p = class=3DMsoNormal><o:p> </o:p></p></div></div><p = class=3DMsoNormal><o:p> </o:p></p><div><div><p class=3DMsoNormal>On = Mon, May 27, 2024 at 7:01<span = style=3D'font-family:"Arial",sans-serif'>=E2=80=AF</span>AM Jorge Flores = <<a href=3D"mailto:jorge@entidad.io">jorge@entidad.io</a>> = wrote:<o:p></o:p></p></div><blockquote = style=3D'border:none;border-left:solid #CCCCCC 1.0pt;padding:0in 0in 0in = 6.0pt;margin-left:4.8pt;margin-right:0in'><div><div><div><p = class=3DMsoNormal>Thoughts on this biometric authentication spec from = MOSIP?<o:p></o:p></p></div><div><p = class=3DMsoNormal><o:p> </o:p></p></div><div><p = class=3DMsoNormal><a = href=3D"https://docs.mosip.io/1.2.0/overview/standards-and-specifications= /169-qr-code-specification" = target=3D"_blank">https://docs.mosip.io/1.2.0/overview/standards-and-spec= ifications/169-qr-code-specification</a><o:p></o:p></p></div></div></div>= <p class=3DMsoN®ormal = style=3D'margin-bottom:12.0pt'>__________________________________________= _____<br>A Community Group mailing list of = KantaraInitiative.org<br>WG-RIUP mailing list -- <a = href=3D"mailto:wg-riup@kantarainitiative.org" = target=3D"_blank">wg-riup@kantarainitiative.org</a><br>To unsubscribe = send an email to <a href=3D"mailto:staff@kantarainitiative.org" = target=3D"_blank">staff@kantarainitiative.org</a><br>List archives = -- <a = href=3D"https://mailman.kantarainitiative.org/hyperkitty/list/wg-riup@kan= tarainitiative.org/" = target=3D"_blank">https://mailman.kantarainitiative.org/hyperkitty/list/w= g-riup@kantarainitiative.org/</a><br>______<br>Group wiki -- <a = href=3D"https://kantara.atlassian.net/wiki/spaces/WG-RIUP" = target=3D"_blank">https://kantara.atlassian.net/wiki/spaces/WG-RIUP</a><o= :p></o:p></p></blockquote></div></div></body></html> ------=_NextPart_000_0164_01DAB0CC.C0065B70-- ü0`0H BE#ÈDµ0 *H÷ 0J10 UUS10U IdenTrust1'0%UIdenTrust Commercial Root CA 10 140116181223Z 340116181223Z0J10 UUS10U IdenTrust1'0%UIdenTrust Commercial Root CA 10"0 *H÷ 0 §PÞ?=Ô3FñoQa²©Og]ÙSÝ(Ù×ðÿ®Crùµ]|ÁBá1PtÑ |Í!«Câ¬^nó Z2œ¢ëùè\ ìÿÒ¯q³ŽSNìO20K^WÄSÂöÙb+¿$bßÞ)KIx<`"üÚ6È¢Ô,Tg5ns¿Xð€Ýå°¢&zÊà6¥õý·ï®?@õmZýÎ4Ê$Üt#]3]Ä%ö0Ý]àÕGœŽë¡»IIØ[óä$äbOOÁ¯tšÑrjzIÌŽFyƱÚYúu! eÝVÎû«¥`ÄùR°œù+# #v;÷3áÉóiùK¢àNŒ~9÷Dp~þZ屬ÑÌò5åIIÊVÉ=û};ÁÂMÉO7é¡jßb.Ë5Qy,È%8ôúK§\Òã 9Jt|ÕYÂ?N\Rô=÷Rñ꣬ýI4(óA:îèÞÿ_ºËèò¹P`À1ÓsåïŸ í3tŸ ÄglðzUFN§ô>áöØ á3d+c×2^ùÀ{xoŒùxz×rtUtx±ºánpºO ºhÃ{ÿ1ðs==*±A þMeky3Ž×£B0@0Uÿ0Uÿ0ÿ0UíDÀÓðî€{ŸBç&TÈ6v0 *H÷ ®2öŠK|Dva'(Í^Tï%Œãù)×®háXï..~SR¶\êºP×ßa æÎÁò7x°_³¢sž8Í>°žûÀϱòì--Ì쪳ª`-;Ã=WužÓ0Í`ÓTñMfÀ]t@£î ~ÂwèÁ§]RíÉÝ%mú©í£:4ÐY{ÚíPó5¿íëM1Ç`ôÚñâHâÆÅ7ûúuYf1G)Úvé®ï¹Q÷#ib<åU6×Tÿñ¹]ÎÔ#oØEJ[eïݧ Ë¥%Ž ùð¢ÒôÈt¡*HeÛÄâ%}ëŸ[ TQJSì]Ê3íbýEÇ/[ÜX 9æú×þŠí=JBtÔÃwYsÍFŸU8ïúè2êX"Þ8ÃÌŒmÉ3:j i? Èêrc#œm<àILª¢¹*6xíÃèFâ&YDuÙuQÍa`Ë]ù"Mæãö[»®ÍÊJk^óQát+é~'§ÙINø¥Û%cbÉ3gk<ÆÞšÍð7qò«üAõÁì7] åNïú±\8¥JáÜ8-<Ü«ÕJîÑplÌîôWøºn00 @žáê<zÌ>BO0 *H÷ 0:10 UUS10U IdenTrust10UTrustID CA A140 240425192606Z 260426192506Z0M1!0 *H÷ sal@idmachines.com1(0&UA01410C0000018F16B8E1DC00130CBB0"0 *H÷ 0 êPV_FŒÞÇYÞ»1w@ ÿÈÈr/n䜻uoBŠZ@^üÈ »wýVá!ó}gk°
:¥4:ütÅe"°³Xɺ&XºðpÓ²>ºEÍ?z ¬b^5á¯ôRiÓïVOgLaèÕ².úrÑF~ÃöÕ?ô5,ËÅú2¯áâœú"EÆšŽ5õ4Åk~C P*ÒfnTnhÄÈ*£}ÞIºÝ€VÛÄTÞÄEh\8ºº ù]BÊÑÈQ i1¢/vNþŠÆk'5²;6ÿËènë®0 |=£0 0Uÿ00Uÿ 0+x0v00+0$http://commercial.ocsp.identrust.com0B+06http://validation.identrust.com/certs/trustidcaa14.p7c0U#0ÂÔD qÏHVŸh8\§·÷EŒ0#U 00 g0 `Hù/0EU>0<0: 8 64http://validation.identrust.com/crl/trustidcaa14.crl0U0sal@idmachines.com0U6(Óqï/ØD@Ø;lmXæSE~0U%0 +0 *H÷ °`ó0Äùê2`'3V-ŠÔý.ÛvéñNF$~L/2A2õþèC(á£Ãüûdï\×î ;!)GùÓ¬NÍÏÐÖ®êòrš¥%]TaË#ÑQ÷²Ö/ªÆÛä$]IÙNØCÓ*Yµ°ôHàî+Ȋ壪aóòœyJl[RU*wœZºé%¹v9N6¬N}íà³so4=µ#Ü)}MÅQWãQüÊoHÖþÿ©ðMoÊÌ^ªê,®j³± Li;I)¡Øâ&È:÷€ôÿÕç<fëñA±°ßÙm°x~š-Çu<Îý>>U±5íkªmÀÇÏë|Ô`îMEa³©)&sGriûi=Ñïfhµîuø$Ðqà 6ÅÆ<A<šÄÞAr7À¢dŒÀ£0ŠbZÍ»ÄÏž.î£ú§Bì)! Ûª¬Éã#jÕäbßúätâV\1èÑÄN ÓÝÝ ^ÐGÜ]šb¹ÜÞFûn}Ácô2ŽÅ]OÝ 1ö)ÉË ."La\W!!ìRj[Ø@ðÒ{ìKÆ+ÜZ3Ù%¯Áf{"ÀË7WF¯\¬1vyÓŽÄ0ô0Ü @ÿÒiÚwÂéÕMM0 *H÷ 0J10 UUS10U IdenTrust1'0%UIdenTrust Commercial Root CA 10 230816192846Z 330812192845Z0:10 UUS10U IdenTrust10UTrustID CA A140"0 *H÷ 0 è©õŒ±éäÙËíX€ËF`eð¬ûÃA`kX»0DÙ9bÜrÁ ñRñÕ׫²3È÷6u/!²Öa§? Œ§8lxn×î%ûf¬<²Ñ»X$=-Ÿà§ÆÍ£EðiùëžÅFÖ{ePH»òÒßqEK tG%£¹yP2`A6ìL[Nä\ÍÒ§»Ó À[:«CQR ãL|70ídj¢Et«¹}Ì u÷@ òxb× Æ°K=°1dªØØWÐ.ïvkª r Xý(bšFr|qG Ôñ³ÿ£|\3òÚtÈ:ÒXTߌô Bp`¡Â`@±[xoÄR^.W°ö@ÁÃé7¯Ì;Œ=Us¯Ø$YÂîníºË*tÅùÛò\ oþåê'Y. xp,¬\¿åù!³I.EÛË7ßÔh[P:4£ÿ]|×2`vZXtZ+cÒŒ~ÚÖP!!4Ó3aózG]wËí=.DÜ"X¯jë]êq?å§â!»aææVBJFQCj)(ñ" êÀÈ"©&?žR§gßû--Ùùt=µK7w¬eÀ#×k%ã3Ö)ŠÁåwsšxh:ÂÝ 8Ÿmí&Û5®i"\OŽEÝ£ä0à0Uÿ0ÿ0Uÿ0+}0{00+0$http://commercial.ocsp.identrust.com0G+0;http://validation.identrust.com/roots/commercialrootca1.p7c0U#0íDÀÓðî€{ŸBç&TÈ6v0_U X0V0TU 0L0J+>https://secure.identrust.com/certificates/policy/ts/index.html0JUC0A0? = ;9http://validation.identrust.com/crl/commercialrootca1.crl0UÂÔD qÏHVŸh8\§·÷EŒ0AU%:08++ +7 +7 +7 0 *H÷ ò][i]ãR®hÝE#+ 9q7%,Lya`VRÐÛ|ìAs«ÊœkYPÄÜdw S_ÇS¡Šá°èö(1Ü@ žæŒ&tš-B9̧åÚTt³Ý¿xQ¿0_¬óã°lÏ>Çc@±]NDì[£]ùb9"fkj¬ØçÀɬŻµû]5O®šªJ}ø@/Sä":MÄ ¥ÜIpÎ-'- WÌ»/MNΟaŒ@,µtí ¿ÛøÎxÒ]ªK'Eh2»ëô¬EØÍìÁjìñK³Ô g£JGÌüž«b]aÕ6ì·»m>Ë¡Ér"HA)ãÔ®r"Dë$\4Áìwš"0ØëQ%DœÐgëZÏ]\×¹IŽ¶l#@0â èÜ;£_àº,÷íèjA=UéOÆ0üôÈÖAg!Y6 ô*s!YTÉŒ¿é©J^íxàÝN}ý+Š°L%Rmü?â/[ìs$ßÃÿeZ((ôjdÓ±x*EB;2SšDåêìÄXyÈÍÏ3ké/ÒysáÎZªf²žÍ~º£±}EÐ*)K]b8NU¢f1<080N0:10 UUS10U IdenTrust10UTrustID CA A14@žáê<zÌ>BO0 `He ¿0 *H÷ 1 *H÷ 0 *H÷ 1 240528110040Z0/ *H÷ 1" ôG®)iø =ÓÄä/TÝ€øBBÖ66[L70] +71P0N0:10 UUS10U IdenTrust10UTrustID CA A14@žáê<zÌ>BO0_*H÷ 1P N0:10 UUS10U IdenTrust10UTrustID CA A14@žáê<zÌ>BO0 *H÷ 1 00 `He*0 `He0 *H÷ 0 `He0*H÷ 0 *H÷ @0 `He0 `He0 `He0+0 *H÷ ª!4©1P£3!A÷G/ö2an»ÕÉ¢¥ÇmRª$ÎïãIcÉINÎ#T]EÒ¿ÿáÐÀp}ut3#ENµ!ä"ô òAtbäÔ:æMQØ0£rÈZå/úIqû"VØýïqùÔ_¥7ÖÅ_þ{óº3tU> ÷k¢5é)È[*WzfÙÜ9ÓŒuø°y Ž·&8GûÌå|óONXÅl± ºâçb°Îã&ÄVÅwDÐÕ<ÞõÀµ\T(2YQEŸÝì¹¥š¡oþËìg;ãqSBžEÒÀ§Œ á{P
I don't know whether it is a "thing" or not. Not clear what the support for this is. ..tom On Tue, May 28, 2024 at 4:00 AM Salvatore D'Agostino <sal@idmachines.com> wrote:
Yet still seems to be a thing… ?
*From:* Tom Jones <thomasclinganjones@gmail.com> *Sent:* Monday, May 27, 2024 7:02 PM *To:* Jorge Flores <jorge@entidad.io> *Cc:* wg-riup <wg-riup@kantarainitiative.org> *Subject:* [WG-RIUP] Re: Claim 169
doesn't look well-thought out to me.
1. it's not encrypted so anyone can read all of it
2. why languages - what does that add?
3. first, middle, last if very english-centric. Should be like pass port. Given name, Family name
4. not sure what use case it - i can't think of one where it is useful and secure.
..tom
On Mon, May 27, 2024 at 7:01 AM Jorge Flores <jorge@entidad.io> wrote:
Thoughts on this biometric authentication spec from MOSIP?
https://docs.mosip.io/1.2.0/overview/standards-and-specifications/169-qr-cod...
_______________________________________________ A Community Group mailing list of KantaraInitiative.org WG-RIUP mailing list -- wg-riup@kantarainitiative.org To unsubscribe send an email to staff@kantarainitiative.org List archives -- https://mailman.kantarainitiative.org/hyperkitty/list/wg-riup@kantarainitiat... ______ Group wiki -- https://kantara.atlassian.net/wiki/spaces/WG-RIUP
participants (3)
-
Jorge Flores
-
Salvatore D'Agostino
-
Tom Jones